...imechart partial=false span=1m sum(dispatched) AS Started, sum(skipped) AS Skipped by splunk_server | table _time Started*
That ALL our scheduled jobs were running onONE searchhead. I assumed t...
I'm receiving a duplicate alert for 1 given scheduled job. It appears to be scheduled twice.
I see a delegated_remote_error and then it gets scheduled twice. Why is this happening?
05-20-2...
EDIT: This is still an issue in Splunk 6.4
I'm noticing that over time, my SHC captain starts favoring one cluster node over the others for scheduled job delegation. After a cluster restart, t...
...hat's confusing me is if there is a way to deploy an app on either a searchheadcluster, or indexer cluster, where only one device performs an action, otherwise I would end up with my data m...
...ed", user="admin", app="", savedsearch_name="", priority=default, status=skipped, reason="The maximum number of concurrent running jobs for this historical scheduled searchon this cluster has b...
...oncurrent running jobs for this historical scheduled searchon this cluster has been reached", concurrency_category="historical_scheduled", concurrency_context="saved-search_cluster-wide", c...
Hi All,
We have a searchheadcluster with 3 searchheads along with a deployer. We have a scheduled search which runs a query every 8 hours and pushes the data to the "summary indexes". Though t...
I have two questions about searchjob execution when searchheadcluster is used.
In a searchheadcluster, when I access a specific searchhead from a browser and search there, is the job e...
Looking at scheduler.log from a searchheadcluster member, the scheduler.log has a status column that can have following values:
delegated_remote
delegated_remote_completion
d...
We have a problem with the scheduler failing following a searchheadcluster (SHC) deployment, which is resolved only if we manually change the captain following the deployment. This is not an i...